Hi Dan,
Can I do the same fix for the linux version 2.6.23.1-42.fc8 PF_KEY engine in order  read  and  consider the ports from the
 struct sockaddr_in filled after the SADB_EXT_ADDRESS_SRC extension in PF_KEY message in PF_KEY engine.

Regards
NaveenA
Dan McDonald wrote:
On Wed, Oct 28, 2009 at 04:15:08PM +0530, Naveen BN wrote:
  
Hi Timo,
Thanks you for the reply , Can i know why is that pf_key API does not 
support adding ports to
 SADB is there an specific reason  .
    

You could always try OpenSolaris, where we actually allow fixing the port on
an SA with PF_KEY.

2367 isn't a complete and whole spec, alas.  There are several historical
reasons for this, which I will spare because at least 1/2 of them involve
insufficient cycles while fighting a two-front war back then.

Dan